agent-sec

Zero-install security baseline for AI coding agents — OWASP/CWE-cited rules over MCP.

Community: Submitted by a user or imported; check the owner before granting accessOnlineNo sign-inGlobalFreeRead-only

What it can do

    What data it sees

    Do you need an account

    No: the server works without sign-in

    Zero-install security baseline for AI coding agents — OWASP/CWE-cited rules over MCP.

    Server tool list (2)

    Raw names from tools/list. Only developers need these.

    get_security_baselineReturn Kernora Agent Security's curated security baseline — the known-good rules an AI coding agent should follow (secrets, injection, supply-chain, destructive ops, data protection). Advisory grounding.
    check_actionAdvisory check: given a described action or command the agent is about to take, return the baseline security factlets that plausibly apply, so the agent can self-correct. Advisory only — does NOT block. Real-time blocking is Kernora Agent Security's paid Integrity Plane.